Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T1D531CD31C0C58CEF0697C7D8CB327A1AF386825CCA136A0185EA539E6B8AD66CD17884 |
|
CONTENT
ssdeep
|
24:tCcH4/uzxthDiG0lC9HXHJbqf1HXHJaVc62DQAfH1vb/2/92Ax6dT:lH6uzx2G0lIbUaVc66QANTU/4dT |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
cc6666cce68c9933 |
|
VISUAL
aHash
|
1000181818181800 |
|
VISUAL
dHash
|
a020b2b2b2b2b2c4 |
|
VISUAL
wHash
|
3c101c1c3c3c187e |
|
VISUAL
colorHash
|
38200038200 |
|
VISUAL
cropResistant
|
9e33120f0b372b23,a020b2b2b2b2b2c4 |
• Threat: Brand impersonation and potential malware distribution.
• Target: Users interested in Atletico Madrid, especially in Asia.
• Method: Fake download links for apps, potentially containing malware or leading to phishing sites.
• Exfil: Unknown, potential redirect to phishing site or malware installation.
• Indicators: Domain mismatch, unofficial download links, association with gambling.
• Risk: MEDIUM - Potential for malware installation and data theft.
Pages with identical visual appearance (based on perceptual hash)